Staff Security Engineer (Blue Team)

1 month, 2 weeks ago
Full-time
Lead
Cybersecurity
Olo

Olo

Olo is a pioneering on-demand commerce platform for over 600 restaurant brands, offering seamless online ordering, delivery, and personalized guest experiences to maximize revenue and enhance digital operations.

Internet Software & Services
251-1K
Founded 2005

Description

  • Guide and coach the Blue Team across information protection, incident detection and response, and security service delivery.
  • Provide strategic and technical oversight for security programs and the broader security engineering function.
  • Lead security engineers and analysts who hunt, detect, and respond to internal and external threats.
  • Collaborate with customers and partners to strengthen their security posture.
  • Drive security improvements by implementing new technologies, replacing legacy tools, automating activities, and scaling practices.
  • Identify and mitigate vulnerabilities and risks by providing actionable guidance to product teams.
  • Lead the Information Protection program, including security tools, security awareness, service provider management, and control testing.
  • Oversee vulnerability management, including assessments, risk scoring, and remediation tracking.
  • Lead threat hunting and non-event-driven security reviews such as design reviews, patching checks, firewall rule reviews, and system configuration checks.
  • Oversee incident detection and response, including process ownership, incident coordination, reporting, and continuous improvement.
  • Monitor and remediate misconfigurations and security risks across cloud environments.
  • Support security services such as risk assessments, vendor assessments, PCI and SOC audit support, and service provider management.

Requirements

  • 5+ years of experience in Security Engineering, Security Operations, or Security Architecture.
  • CISSP, GCIH, or a similar certification preferred.
  • Experience serving as a technical lead for distributed teams with many remote engineers.
  • Experience with PCI-DSS and other compliance or regulatory standards.
  • Experience with attacker tactics, techniques, and procedures.
  • Knowledge of information technology, evolving threats, attack patterns, incident response, and cybersecurity standards.
  • Experience developing and leading incident response, remediation, and mitigation activities, including status updates and reports.
  • Experience analyzing security events to distinguish real incidents from non-incidents.
  • Deep understanding of operating systems, networking, and application concepts.
  • Experience hardening Windows, macOS, Linux containers, and Kubernetes.
  • Familiarity with AWS security best practices and Infrastructure-as-Code.
  • Experience deploying and maintaining security technologies such as proxies, EDR, SIEM, WAF, DLP, vulnerability assessment tools, and zero trust controls.
  • Ability to work with internal cross-functional teams, external partners, auditors, and customers.
  • Ability to work during critical incidents and support coverage requirements.
  • Strong English writing and verbal communication skills.

Benefits

  • Remote-friendly work model with the option to work from anywhere in the U.S. or from Olo’s NYC headquarters.
  • Annual compensation range of $161,000 to $220,000, depending on experience and location.
  • 20 days of paid time off, 10 sick days, 11 holidays, and year-end closure.
  • Health, dental, and vision coverage for employees and their families.
  • 401(k) match.
  • Remote-office stipend.
  • Generous parental leave plan.
  • Volunteer time off and gift matching policy.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

DevSecOps Engineer

INflow Federal 51-250 Aerospace & Defense

INflow Federal is seeking a fully remote DevSecOps Engineer to support an enterprise case management solution for Department of Defense mission partners by securing and automating cloud-based CI/CD and infrastructure operations in AWS GovCloud.

Agile AWS Bash CI/CD CloudFormation Docker ELK Stack Git GitLab CI Helm Jenkins Kubernetes PowerShell Prometheus Python Terraform
1 hour, 45 minutes ago

Lead Security Engineer, Enterprise Security

Klaviyo 1K-5K IT Services

Klaviyo is hiring a Lead Security Engineer to secure its corporate systems and platforms across SaaS, identity, endpoints, Zero Trust networking, and perimeter security.

AWS Azure Cloudflare CrowdStrike GCP OAuth Secrets Management Terraform Vercel
2 hours, 26 minutes ago

Senior Detection and Response Engineer

Anduril Industries 1K-5K Aerospace & Defense

Anduril Industries is hiring a Senior Detection and Response Engineer to build and operate defensive security controls that protect the infrastructure supporting its defense technology products.

AWS Azure CI/CD CloudFormation Docker GitHub Go Kubernetes Network Security Python Rust SQL Terraform
4 hours, 7 minutes ago

Lead Security Engineer, Enterprise Security

Klaviyo 1K-5K IT Services

Klaviyo is hiring a Lead Security Engineer to secure its corporate systems and platforms across SaaS, identity, endpoints, Zero Trust networking, and perimeter defenses in a hands-on technical leadership role.

AWS Azure Cloudflare CrowdStrike GCP OAuth OpenID Connect Secrets Management Terraform Vercel
4 hours, 39 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers